Certified Application Security Engineer

Course Description:

 

The Certified Application Security Engineer (CASE) credential is developed in partnership with large application and software development experts globally.
The CASE credential tests the critical security skills and knowledge required throughout a typical software development life cycle (SDLC), focusing on the importance of the implementation of secure methodologies and practices in today’s insecure operating environment.


The CASE certified training program is developed concurrently to prepare software professionals with the necessary capabilities that are expected by employers and academia globally.It is designed to be a hands-on, comprehensive application security course that will help software professionals create secure applications.
 

The training program encompasses security activities involved in all phases of the Software Development Lifecycle (SDLC): planning, creating, testing, and deploying an application.

The Purpose
 

  • To ensure that application security is no longer an afterthought but a foremost one.

  • To lay the foundation required by all application developers and development organizations, to produce secure applications with greater stability and fewer security risks to the consumer, therefore, making security a foremost thought.

  • To ensure that the organizations mitigate the risk of losing millions due to security compromises that may arise with every step of application development process.

  • To help individuals develop the habit of giving importance to security sacrosanct of their job role in the SDLC, therefore opening security as the main domain for testers, developers, network administrator etc.

CASE .NET

​The .Net framework has increased in popularity because of its open-source nature, interoperability, language independence, a library of codes and ease of deployment. It has become the preferred choice of application developers. However, there are not many training programs that address secure application development.

While .Net developers often learn security on the job, primarily because the basic education of programming does not usually cover or emphasize security concerns, the CASE program trains these developers to place importance on security.

Who is it For?

  • .NET Developers with a minimum of 2 years of experience and individuals who want to become application security engineers/analysts/testers

  • Individuals involved in the role of developing, testing, managing, or protecting a wide area of applications

About the Course

Duration:
Total Training: 24 hours or 3 full-day sessions

 

Course Material:
All attendees will receive their personal copy of the CASE courseware, an EC-Council CASE exam voucher, and access to iLabs (EC-Council’s cloud-driven labs environment)

 

Certification:
The CASE exam can be challenged after attending the official CASE training. Candidates that successfully pass the exam will receive their CASE certificate and membership privileges. Members are expected to adhere to the policies of EC-Council’s Continuing Education Requirements.

Course Outline

  • Understanding Application Security, Threats, and Attacks

  • Security Requirements Gathering

  • Secure Application Design and Architecture

  • Secure Coding Practices for Input Validation

  • Secure Coding Practices for Authentication and Authorization

  • Secure Coding Practices for Cryptography

  • Secure Coding Practices for Session Management

  • Secure Coding Practices for Error Handling

  • Static and Dynamic Application Security Testing (SAST & DAST)

  • Secure Deployment and Maintenance

 

Training Options
 

iLearn (Self-Study)
This solution is an asynchronous, self-study environment which delivers EC-Council’s sought after IT Security training courses in a streaming video format.

 

iWeek (Live Online)
This solution is a live, online, instructor-led training course which means you can attend a course with a live instructor from anywhere with an internet connection.

 

Master Class
This solution offers you the opportunity to learn from world-class instructors and the opportunity to collaborate with top Infosecurity professionals.


Training Partner (In Person)
This solution offers “in-person” training so that you can get the benefit of collaborating with your peers and gaining real-world skills, conveniently located in your backyard.

CASE JAVA

According to the 2017 State of Software Security Report, nearly 90% of Java applications contain one or more vulnerable component/s, making them ideal breach points for hostile attackers.

Although Java has come a long way from its development in 1995, cybercrime has also spread, reaching epidemic levels, increasing the need for secure Java developers, regardless of whether they’re creating a new program or upgrading revising an old one.

Who is it For?

  • Java Developers with a minimum of 2 years of experience  and individuals who want to become application security engineers/analysts/testers

  • Individuals involved in the role of developing, testing, managing, or protecting a wide area of applications

About the Course

Duration
Total Training: 24 hours or 3 full-day sessions

 

Course Material
All attendees will receive their personal copy of the CASE courseware, an EC-Council CASE exam voucher, and access to iLabs (EC-Council’s cloud-driven labs' environment)

 

Certification
The CASE exam can be challenged after attending the official CASE training. Candidates that successfully pass the exam will receive their CASE certificate and membership privileges. Members are expected to adhere to the policies of EC-Council’s Continuing Education Requirements.

Course Outline

  • Understanding Application Security, Threats, and Attacks

  • Security Requirements Gathering

  • Secure Application Design and Architecture

  • Secure Coding Practices for Input Validation

  • Secure Coding Practices for Authentication and Authorization

  • Secure Coding Practices for Cryptography

  • Secure Coding Practices for Session Management

  • Secure Coding Practices for Error Handling

  • Static and Dynamic Application Security Testing (SAST & DAST)

  • Secure Deployment and Maintenance

 

Training Options
 

iLearn (Self-Study)
This solution is an asynchronous, self-study environment that delivers EC-Council’s sought after IT Security training courses in a streaming video format.

 

iWeek (Live Online)
This solution is a live, online, instructor-led training course which means you can attend a course with a live instructor from anywhere with an internet connection.

 

Master Class
This solution offers you the opportunity to learn from world-class instructors and the opportunity to collaborate with top Infosecurity professionals.


Training Partner (In Person)
This solution offers “in-person” training so that you can get the benefit of collaborating with your peers and gaining real-world skills, conveniently located in your backyard.